Lucene search

K
prionPRIOn knowledge basePRION:CVE-2018-6533
HistoryFeb 27, 2018 - 7:29 p.m.

Design/Logic Flaw

2018-02-2719:29:00
PRIOn knowledge base
www.prio-n.com
4

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.8%

An issue was discovered in Icinga 2.x through 2.8.1. By editing the init.conf file, Icinga 2 can be run as root. Following this the program can be used to run arbitrary code as root. This was fixed by no longer using init.conf to determine account information for any root-executed code (a larger issue than CVE-2017-16933).

CPENameOperatorVersion
icingage2.0.0
icingale2.8.1

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.8%